deepseek-harness/packages/bash
Tianyi Cui 3422f8fa5c Merge branch 'worktree-hooks-b-bash-seam' into worktree-hooks-c-interception
# Conflicts:
#	docs/cordis-catalog/events-and-services.md
#	packages/core/agent/src/types.ts
2026-07-02 18:41:55 +08:00
..
bash docs(bash): reframe stdin/env — the scrub is the security control, not a trust boundary 2026-07-02 04:08:24 +08:00
bash-local Merge branch 'worktree-hooks-b-bash-seam' into worktree-hooks-c-interception 2026-07-02 18:41:55 +08:00
tool-bash Merge worktree-hooks-b-bash-seam into worktree-hooks-c-interception 2026-07-02 04:51:24 +08:00
README.md Document the package hierarchy and finalize the RFC 2026-06-20 23:25:33 +08:00

bash/ — bash capability family

The canonical three-package capability seam (see capability seams): an abstract executor interface, a concrete local implementation, and the model-facing tool that consumes it. All product packages.

Package Role ctx key
bash/ Abstract bash executor seam (interface + vocabulary) ctx.bash
bash-local/ Local-subprocess BashExecutor implementation (registers ctx.bash)
tool-bash/ Model-facing bash/bash_output/bash_kill tool schemas (registers on ctx.tools)

The interface lives at bash/bash/. A sandboxed executor would replace bash-local without touching the interface or the tool — the split is what makes that possible.